** UNSUPPORTED WHEN ASSIGNED ** Apache Jetspeed-2 does not sufficiently filter untrusted user input by default leading to a number of issues including XSS, CSRF, XXE, and SSRF. Setting the configuration option “xss.filter.post = true” may mitigate these issues. NOTE: Apache Jetspeed is a dormant project of Apache Portals and no updates will be provided for this issue. (CVSS:7.5) (Last Update:2022-07-14)Latest security vulnerabilities (Cross Site Scripting (XSS)) (CVSS score >= 4) Read More
GraphQL API Security Testing – Test & Report
GraphQL Security Testing GraphQL is a query language that allows developers to access data from APIs in a more efficient and flexible way. It has